Draft — not yet reviewed by a lawyer. The descriptions of what data is collected and how long it is kept are accurate to the software. The legally operative sections are incomplete and marked in red. Do not rely on this document, and do not publish it, until it has been completed and reviewed.

Privacy Policy

Version 1.0.0 · Last updated DATE

NoPrompt is a camera-only social app. This policy explains what it collects, why, and how long it keeps it. It describes the software as it actually behaves rather than what an app of this kind typically does.

Who is responsible for your data

The data controller is LEGAL ENTITY NAME, at REGISTERED ADDRESS. You can reach us about privacy at PRIVACY CONTACT EMAIL.

What we collect

When you create an account

NoPrompt has no passwords. You sign in with Apple or Google, and we receive and store an identifier for that account, plus your email address and name if the provider supplies them. Apple often supplies a private relay address instead of your real one; that is fine and we treat it the same way. You then choose a username, which is permanent, and may add a display name, a bio and a profile photo.

What you post

Photos, captions, comments and likes. Because posting is camera-only, photos are captured in the app rather than selected from your library — we never read your photo library, and the app does not ask for access to it, except when you deliberately choose a profile photo.

Retake transparency data

Every photo is stored with the number of takes it took, the time it was captured and the time it was posted. This is shown publicly alongside the photo to everyone who can see the post — it is the central feature of the app, not analytics. It is recorded when you capture and is never editable afterwards.

Your social graph

Friendships, pending friend requests, and the list of accounts you have blocked. Blocking is mutual and invisible: a blocked account is not told, and the two of you disappear from each other's view everywhere in the app.

Reports you make

If you report a post, comment or account, we store what was reported, who reported it, and the reason you selected, so it can be acted on.

Sessions and technical logs

We store one record per signed-in device so you can see and revoke your active sessions. Sign-in tokens are stored hashed, never in a form we can read back. Our servers keep operational request logs — a request identifier, the route, and the outcome — with credentials and request bodies excluded from what is logged.

What we do not collect

These are properties of the software, and they are unusual enough to state plainly:

Who your content is visible to

If your account is private, your posts and stories are visible only to accounts you have accepted as friends. If it is public, they are visible to signed-in users who are not blocked. Stories are visible for 24 hours from the moment they were captured, and the author can see who viewed them.

Where your data is stored

Account and content records are held in a PostgreSQL database. Photos are held in S3-compatible object storage, provided by STORAGE PROVIDER. Servers are hosted by HOSTING PROVIDER, in REGION / COUNTRY. We use Apple and Google solely to verify your identity at sign-in.

TODO: list every sub-processor, and state the transfer mechanism if data leaves the UK/EEA.

How long we keep it

Your rights

You can edit your profile and delete your posts, comments and account from inside the app at any time. Deleting your account is the erasure path, and it is complete rather than cosmetic.

TODO: statutory rights. Under GDPR/UK GDPR this must set out access, rectification, erasure, restriction, portability and objection, the lawful basis relied on for each purpose (Art. 6), how to exercise each right, our response time, and the right to complain to a supervisory authority. Under CCPA/CPRA the equivalent disclosures and the "Do Not Sell or Share" statement are required. This section must be written for the jurisdictions you actually operate in.

Children

TODO: state the minimum age and how it is enforced. This interacts with COPPA in the US, the UK Age Appropriate Design Code, and the age rating you declare on each store — get it consistent across all three.

Changes to this policy

If we change this policy materially we will say so in the app before the change takes effect.

Contact

PRIVACY CONTACT EMAIL · POSTAL ADDRESS